CVE-2008-3845

Multiple SQL injection vulnerabilities in Crafty Syntax Live Help (CSLH) 2.14.6 and earlier allow remote attackers to execute arbitrary SQL commands via the department parameter to (1) is_xmlhttp.php and (2) is_flush.php.
SQL Injection
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.5 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:P/I:P/A:P
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 77%
VendorProductVersion
craftysyntaxcrafty_syntax_live_help
𝑥
≤ 2.14.6
craftysyntaxcrafty_syntax_live_help
1.0
craftysyntaxcrafty_syntax_live_help
1.1
craftysyntaxcrafty_syntax_live_help
1.2
craftysyntaxcrafty_syntax_live_help
1.3
craftysyntaxcrafty_syntax_live_help
1.4
craftysyntaxcrafty_syntax_live_help
1.5
craftysyntaxcrafty_syntax_live_help
1.6
craftysyntaxcrafty_syntax_live_help
1.7
craftysyntaxcrafty_syntax_live_help
2.0
craftysyntaxcrafty_syntax_live_help
2.1
craftysyntaxcrafty_syntax_live_help
2.10.0
craftysyntaxcrafty_syntax_live_help
2.10.1
craftysyntaxcrafty_syntax_live_help
2.10.2
craftysyntaxcrafty_syntax_live_help
2.10.3
craftysyntaxcrafty_syntax_live_help
2.10.4
craftysyntaxcrafty_syntax_live_help
2.10.5
craftysyntaxcrafty_syntax_live_help
2.11.0
craftysyntaxcrafty_syntax_live_help
2.11.1
craftysyntaxcrafty_syntax_live_help
2.11.2
craftysyntaxcrafty_syntax_live_help
2.11.3
craftysyntaxcrafty_syntax_live_help
2.11.4
craftysyntaxcrafty_syntax_live_help
2.11.5
craftysyntaxcrafty_syntax_live_help
2.11.6
craftysyntaxcrafty_syntax_live_help
2.11.7
craftysyntaxcrafty_syntax_live_help
2.12.0
craftysyntaxcrafty_syntax_live_help
2.12.1
craftysyntaxcrafty_syntax_live_help
2.12.2
craftysyntaxcrafty_syntax_live_help
2.12.3
craftysyntaxcrafty_syntax_live_help
2.12.4
craftysyntaxcrafty_syntax_live_help
2.12.5
craftysyntaxcrafty_syntax_live_help
2.12.6
craftysyntaxcrafty_syntax_live_help
2.12.7
craftysyntaxcrafty_syntax_live_help
2.12.8
craftysyntaxcrafty_syntax_live_help
2.12.9
craftysyntaxcrafty_syntax_live_help
2.13.0
craftysyntaxcrafty_syntax_live_help
2.13.1
craftysyntaxcrafty_syntax_live_help
2.14.0
craftysyntaxcrafty_syntax_live_help
2.14.1
craftysyntaxcrafty_syntax_live_help
2.14.2
craftysyntaxcrafty_syntax_live_help
2.14.3
craftysyntaxcrafty_syntax_live_help
2.14.4
craftysyntaxcrafty_syntax_live_help
2.14.5
𝑥
= Vulnerable software versions